Foro de Spyware - Foro de Hijackthis - Foro de Virus - InfoSpyware

Regresar   Foro de Spyware Spyware - Adware - Hijackers - Malwares Temas Solucionados
Registrarse Lista de usuarios AntiSpywares AntiVirus
Respuesta
 
Herramientas
  #1 (permalink)  
Antiguo 30/11/06, 10:35:21
Usuario
 
Registrado: nov 2006
Ubicación: Tarragona
Mensajes: 7
Bien Revisión LOG (Solcuionado)

Hola, buscando he encontrado esta página y me descargado el programa Hijackthis para crear el siguiente LOG. Los problemas que tengo en el PC son que me va lento, sobre todo cuanto más tiempo lo tengo encendido y se me abren páginas webs de forma automática. Me podeis echar una mano?

Logfile of HijackThis v1.99.1
Scan saved at 22:45:02, on 29/11/2006
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\QW5kaW9uIEZsb3Jlcw\command.exe
C:\ARCHIV~1\SYMANT~1\SYMANT~1\DefWatch.exe
C:\Archivos de programa\Network Monitor\netmon.exe
C:\ARCHIV~1\SYMANT~1\SYMANT~1\Rtvscan.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Mixer.exe
C:\WINDOWS\System32\wlmsn.exe
C:\ARCHIV~1\SYMANT~1\SYMANT~1\vptray.exe
C:\Archivos de programa\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Archivos de programa\Java\jre1.5.0_06\bin\jusched.exe
C:\WINDOWS\System32\msnmsrgr.exe
C:\mousepad2.exe
C:\Archivos de programa\webHancer\Programs\whagent.exe
C:\WINDOWS\System32\msnmsgr.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Archivos de programa\Messenger\msmsgs.exe
C:\Archivos de programa\Internet Explorer\iexplore.exe
C:\Archivos de programa\EMULE\emule.exe
C:\ARCHIVOS DE PROGRAMA\INTERNET EXPLORER\IEXPLORE.EXE
C:\ARCHIVOS DE PROGRAMA\INTERNET EXPLORER\IEXPLORE.EXE
C:\WINDOWS\System32\defrag.exe
C:\Archivos de programa\HJT\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =

http://searchbar.findthewebsiteyouneed.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =

http://searchbar.findthewebsiteyouneed.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =

http://searchbar.findthewebsiteyouneed.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =

http://www.findthewebsiteyouneed.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =

http://searchbar.findthewebsiteyouneed.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =

http://searchbar.findthewebsiteyouneed.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Vínculos
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} -

C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [C-Media Mixer] Mixer.exe /startup
O4 - HKLM\..\Run: [Spooler SubSystem App] C:\WINDOWS\System32\spooIsv.exe
O4 - HKLM\..\Run: [symwsc.exe] C:\ssij.exe
O4 - HKLM\..\Run: [Windows live Support] wlmsn.exe
O4 - HKLM\..\Run: [vptray] C:\ARCHIV~1\SYMANT~1\SYMANT~1\vptray.exe
O4 - HKLM\..\Run: [Windows DLL Loader] C:\WINDOWS\System32\auh.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Archivos de programa\Roxio\Easy CD Creator

5\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Archivos de

programa\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [MSN Messenger] msnmsrgr.exe
O4 - HKLM\..\Run: [keyboard] C:\\keyboard2.exe
O4 - HKLM\..\Run: [mousepad] C:\\mousepad2.exe
O4 - HKLM\..\Run: [newname] C:\\newname2.exe
O4 - HKLM\..\Run: [webHancer Agent] C:\Archivos de programa\webHancer\Programs\whagent.exe
O4 - HKLM\..\Run: [webHancer Survey Companion] C:\Archivos de

programa\webHancer\Programs\whsurvey.exe
O4 - HKLM\..\Run: [The MSN 9.9 Loader] msnmsgr.exe
O4 - HKLM\..\RunServices: [Windows live Support] wlmsn.exe
O4 - HKLM\..\RunServices: [MSN Messenger] msnmsrgr.exe
O4 - HKLM\..\RunServices: [The MSN 9.9 Loader] msnmsgr.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Archivos de programa\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [MSN Messenger] msnmsrgr.exe
O4 - Startup: Adobe Gamma.lnk = C:\Archivos de programa\Archivos

comunes\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Archivos de programa\Archivos

comunes\Adobe\Calibration\Adobe Gamma Loader.exe
O8 - Extra context menu item: E&xport to Microsoft Excel -

res://C:\ARCHIV~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Archivos de

programa\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Consola de Sun Java - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -

C:\Archivos de programa\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Referencia - {92780B25-18CC-41C8-B9BE-3C9C571A8263} -

C:\ARCHIV~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} -

C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} -

C:\WINDOWS\web\related.htm
O10 - Hijacked Internet access by WebHancer
O10 - Hijacked Internet access by WebHancer
O10 - Hijacked Internet access by WebHancer
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -

http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1136445

070084
O17 - HKLM\System\CS2\Services\Tcpip\..\{577F3C7B-B99C-4A44-92D7-576FFA1DC66C}: NameServer =

192.168.1.1,62.14.4.65
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} -

"C:\ARCHIV~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: NavLogon - C:\WINDOWS\System32\NavLogon.dll
O20 - Winlogon Notify: StillImage - C:\WINDOWS\system32\s0rs0a97ed.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Archivos de programa\Archivos

comunes\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Command Service (cmdService) - Unknown owner -

C:\WINDOWS\QW5kaW9uIEZsb3Jlcw\command.exe
O23 - Service: DefWatch - Symantec Corporation - C:\ARCHIV~1\SYMANT~1\SYMANT~1\DefWatch.exe
O23 - Service: Network Monitor - Unknown owner - C:\Archivos de programa\Network

Monitor\netmon.exe
O23 - Service: Symantec AntiVirus Client (Norton AntiVirus Server) - Symantec Corporation -

C:\ARCHIV~1\SYMANT~1\SYMANT~1\Rtvscan.exe
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiMeneame
Responder Con Cita
  #2 (permalink)  
Antiguo 30/11/06, 16:22:54
Avatar de Nextspy
Moderador Gral.
 
Registrado: ene 2006
Ubicación: Chile
Mensajes: 2.435
Re: Revisión LOG

Hola y Bienvenid@ a forospyware

Crea un nuevo log y lo pegas tal como sale en el bloc de notas

Descargar y sacar el log de HijackThis 1.99.1

salu2
__________________

Novedades del Foro | Antivirus Online | Eliminar Malwares | Políticas del Foro | Blog


* Ayúdanos haciendo una DONACIÓN para poder seguir Ayudando.
* Para evitar Virus y Spywares al navegar por internet, USE FIREFOX !!
* No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiMeneame
Responder Con Cita
  #3 (permalink)  
Antiguo 01/12/06, 02:42:40
Usuario
 
Registrado: nov 2006
Ubicación: Tarragona
Mensajes: 7
Re: Revisión LOG

Logfile of HijackThis v1.99.1
Scan saved at 8:39:46, on 01/12/2006
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\ARCHIV~1\SYMANT~1\SYMANT~1\DefWatch.exe
C:\Archivos de programa\Network Monitor\netmon.exe
C:\ARCHIV~1\SYMANT~1\SYMANT~1\Rtvscan.exe
C:\WINDOWS\System32\svchost.exe
C:\Archivos de programa\Webroot\Spy Sweeper\WRSSSDK.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\Mixer.exe
C:\WINDOWS\System32\wlmsn.exe
C:\ARCHIV~1\SYMANT~1\SYMANT~1\vptray.exe
C:\Archivos de programa\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Archivos de programa\Java\jre1.5.0_06\bin\jusched.exe
C:\WINDOWS\System32\msnmsrgr.exe
C:\mousepad2.exe
C:\WINDOWS\System32\msnmsgr.exe
C:\windows\system32\csvhost.exe
C:\Archivos de programa\Webroot\Spy Sweeper\SpySweeper.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Archivos de programa\Messenger\msmsgs.exe
C:\Archivos de programa\HJT\HijackThis.exe
C:\Archivos de programa\Internet Explorer\iexplore.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Vínculos
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [C-Media Mixer] Mixer.exe /startup
O4 - HKLM\..\Run: [Windows live Support] wlmsn.exe
O4 - HKLM\..\Run: [vptray] C:\ARCHIV~1\SYMANT~1\SYMANT~1\vptray.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Archivos de programa\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Archivos de programa\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [MSN Messenger] msnmsrgr.exe
O4 - HKLM\..\Run: [mousepad] C:\\mousepad2.exe
O4 - HKLM\..\Run: [The MSN 9.9 Loader] msnmsgr.exe
O4 - HKLM\..\Run: [csvhost.exe] c:\windows\system32\csvhost.exe
O4 - HKLM\..\Run: [SpySweeper] "C:\Archivos de programa\Webroot\Spy Sweeper\SpySweeper.exe" /startintray
O4 - HKLM\..\RunServices: [Windows live Support] wlmsn.exe
O4 - HKLM\..\RunServices: [MSN Messenger] msnmsrgr.exe
O4 - HKLM\..\RunServices: [The MSN 9.9 Loader] msnmsgr.exe
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Archivos de programa\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [MSN Messenger] msnmsrgr.exe
O4 - Startup: Adobe Gamma.lnk = C:\Archivos de programa\Archivos comunes\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Archivos de programa\Archivos comunes\Adobe\Calibration\Adobe Gamma Loader.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\ARCHIV~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Archivos de programa\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Consola de Sun Java - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Archivos de programa\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Referencia - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\ARCHIV~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O10 - Broken Internet access because of LSP provider 'rsvp32_2.dll' missing
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1136445070084
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\ARCHIV~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: NavLogon - C:\WINDOWS\System32\NavLogon.dll
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Archivos de programa\Archivos comunes\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: DefWatch - Symantec Corporation - C:\ARCHIV~1\SYMANT~1\SYMANT~1\DefWatch.exe
O23 - Service: Network Monitor - Unknown owner - C:\Archivos de programa\Network Monitor\netmon.exe
O23 - Service: Symantec AntiVirus Client (Norton AntiVirus Server) - Symantec Corporation - C:\ARCHIV~1\SYMANT~1\SYMANT~1\Rtvscan.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Archivos de programa\Webroot\Spy Sweeper\WRSSSDK.exe
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiMeneame
Responder Con Cita
  #4 (permalink)  
Antiguo 01/12/06, 19:34:07
Avatar de Nextspy
Moderador Gral.
 
Registrado: ene 2006
Ubicación: Chile
Mensajes: 2.435
Re: Revisión LOG

Hola

Visita windowsupdate, para que actualices el Windows e instala el service pack 2

Descarga y Actualiza todas las herramientas antes de comenzar

1.- Desactiva Restaurar Sistema

2.- Activa Ver Archivos Ocultos

3.- Reinicia el pc en Modo a Prueba de Fallos

4.- Ve a inicio/panel de control/ agregar o quitar programas y desinstalas el Network Monitor

5.- Cierra todos los programas, luego ejecuta el HijackThis, marca y les das "Fix Checked" a las siguientes entradas:

O4 - HKLM\..\Run: [Windows live Support] wlmsn.exe

O4 - HKLM\..\Run: [MSN Messenger] msnmsrgr.exe

O4 - HKLM\..\Run: [mousepad] C:\\mousepad2.exe

O4 - HKLM\..\Run: [The MSN 9.9 Loader] msnmsgr.exe

O4 - HKLM\..\Run: [csvhost.exe] c:\windows\system32\csvhost.exe

O4 - HKLM\..\RunServices: [Windows live Support] wlmsn.exe

O4 - HKLM\..\RunServices: [MSN Messenger] msnmsrgr.exe

O4 - HKLM\..\RunServices: [The MSN 9.9 Loader] msnmsgr.exe

O4 - HKCU\..\Run: [MSN Messenger] msnmsrgr.exe

O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm

O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm

O23 - Service: Network Monitor - Unknown owner - C:\Archivos de programa\Network Monitor\netmon.exe


6.- Busca y elimina estos archivos, en caso de que no los puedas eliminar utilizas la herramienta "Killbox"

C:\\mousepad2.exe
c:\windows\system32\csvhost.exe
<--- CUIDADO, no lo confundas con el svchost.exe
C:\WINDOWS\web\related.htm
C:\WINDOWS\System32\msnmsgr.exe
C:\WINDOWS\System32\msnmsrgr.exe
wlmsn.exe
C:\Archivos de programa\Network Monitor
<--- Elimina esta carpeta y todo el contenido

7.- Analiza el sistema con DelPSGuard - Manual <-- Pega el reporte

8.- Analiza el sistema con SpyBot Search & Destroy y con el AVG Anti-spyware - Manual

9.- Utiliza la herramienta LSP-Fix, para que repares la entrada 010

O10 - Broken Internet access because of LSP provider 'rsvp32_2.dll' missing

10.- Reinicia y entra en modo normal y analizas el sistema con Look2Me-Destroyer.exe

11.- Utiliza el Ccleaner - Manual para eliminar las cookies y temporales

12.- Utiliza el Regseeker - Manual para limpiar el registro

13.- Reinicia, entra en modo normal y analiza el sistema con Kaspersky online - Manual

Nota* Al terminar vuelve a activar restaurar sistema y esconde los archivos ocultos

Nos cuentas los resultados y pegas un nuevo log de HijackThis

salu2
_____________
__________________

Novedades del Foro | Antivirus Online | Eliminar Malwares | Políticas del Foro | Blog


* Ayúdanos haciendo una DONACIÓN para poder seguir Ayudando.
* Para evitar Virus y Spywares al navegar por internet, USE FIREFOX !!
* No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiMeneame
Responder Con Cita
  #5 (permalink)  
Antiguo 04/12/06, 18:28:04
Usuario
 
Registrado: nov 2006
Ubicación: Tarragona
Mensajes: 7
Re: Revisión LOG

Hola, ya no se me abre sóla ninguna página web, eso si, el PC me sigue iendo lento, aunque creo que es porque le falta memoria RAM, es un PIII a 1000 MHz con 128 MB de RAM. Aqui os dejo de nuevo el LOG:

Logfile of HijackThis v1.99.1
Scan saved at 0:27:01, on 05/12/2006
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Archivos de programa\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\ARCHIV~1\SYMANT~1\SYMANT~1\DefWatch.exe
C:\ARCHIV~1\SYMANT~1\SYMANT~1\Rtvscan.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\svchost.exe
C:\Archivos de programa\Webroot\Spy Sweeper\WRSSSDK.exe
C:\WINDOWS\Mixer.exe
C:\ARCHIV~1\SYMANT~1\SYMANT~1\vptray.exe
C:\Archivos de programa\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Archivos de programa\Java\jre1.5.0_06\bin\jusched.exe
C:\Archivos de programa\Webroot\Spy Sweeper\SpySweeper.exe
C:\Archivos de programa\Unlocker\UnlockerAssistant.exe
C:\Archivos de programa\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Archivos de programa\Messenger\msmsgs.exe
C:\Archivos de programa\Internet Explorer\iexplore.exe
C:\Archivos de programa\HJT\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.forospyware.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Vínculos
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Archivos de programa\Spybot - Search & Destroy\SDHelper.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [C-Media Mixer] Mixer.exe /startup
O4 - HKLM\..\Run: [vptray] C:\ARCHIV~1\SYMANT~1\SYMANT~1\vptray.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Archivos de programa\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Archivos de programa\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [SpySweeper] "C:\Archivos de programa\Webroot\Spy Sweeper\SpySweeper.exe" /startintray
O4 - HKLM\..\Run: [UnlockerAssistant] "C:\Archivos de programa\Unlocker\UnlockerAssistant.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Archivos de programa\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Archivos de programa\Messenger\msmsgs.exe" /background
O4 - Startup: Adobe Gamma.lnk = C:\Archivos de programa\Archivos comunes\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Archivos de programa\Archivos comunes\Adobe\Calibration\Adobe Gamma Loader.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\ARCHIV~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Archivos de programa\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Consola de Sun Java - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Archivos de programa\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Referencia - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\ARCHIV~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/english/kavwebscan_unicode.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1136445070084
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\ARCHIV~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: NavLogon - C:\WINDOWS\System32\NavLogon.dll
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Archivos de programa\Archivos comunes\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Archivos de programa\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: DefWatch - Symantec Corporation - C:\ARCHIV~1\SYMANT~1\SYMANT~1\DefWatch.exe
O23 - Service: Symantec AntiVirus Client (Norton AntiVirus Server) - Symantec Corporation - C:\ARCHIV~1\SYMANT~1\SYMANT~1\Rtvscan.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Archivos de programa\Webroot\Spy Sweeper\WRSSSDK.exe

Saludos.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiMeneame
Responder Con Cita
  #6 (permalink)  
Antiguo 04/12/06, 19:44:19
Avatar de Nextspy
Moderador Gral.
 
Registrado: ene 2006
Ubicación: Chile
Mensajes: 2.435
Re: Revisión LOG

Hola

El log esta limpio

Es entendible que el sistema no ande adecuadamente, ya que dispones de pocos recursos para Windows xp

Para que eliminemos las posibilidades de malware, haz lo siguiente:

1.- Desactiva Restaurar Sistema

2.- Utiliza el Ccleaner - Manual para eliminar las cookies y temporales

3.- Utiliza el Regseeker - Manual para limpiar el registro

4.- Analiza el sistema con Kaspersky online - Manual y con Ewido Online - Manual

Luego pegas ambos reportes

¿Donde exactamente es lento el sistema? ¿Al inicio?

salu2
__________________

Novedades del Foro | Antivirus Online | Eliminar Malwares | Políticas del Foro | Blog


* Ayúdanos haciendo una DONACIÓN para poder seguir Ayudando.
* Para evitar Virus y Spywares al navegar por internet, USE FIREFOX !!
* No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiMeneame
Responder Con Cita
  #7 (permalink)  
Antiguo 05/12/06, 16:15:36
Usuario
 
Registrado: nov 2006
Ubicación: Tarragona
Mensajes: 7
Re: Revisión LOG

Hola, la verdada que va lento todo el rato, pero creo que es por lo que te decia, falta de RAM, tiene 128 pa XP....
Aqui te copio los reports, saludos y gracias.

KASPERSKY ONLINE SCANNER REPORT
Tuesday, December 05, 2006 12:25:41 AM
Operating System: Microsoft Windows XP Professional, (Build 2600)

Infected Object Name Virus Name Last Action
C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\APTemp\AP0.exe Infected: Backdoor.Win32.PoeBot.c skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\00BC0000.VBN Infected: Trojan.WinREG.Zapchast skipped


C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\01940000.VBN CryptZ: infected - 3 skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\01A80000.VBN Infected: Trojan.WinREG.Zapchast skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\01B40000.VBN Infected: Trojan-Clicker.Win32.VB.kc skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\01C00000.VBN Infected: Trojan.Win32.StartPage.aha skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\01C00001.VBN Infected: Trojan-Clicker.Win32.VB.kc skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\01FC0000.VBN Infected: Trojan.WinREG.Zapchast skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\02440000.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\02440001.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\02880000.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\02C00000.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\03440000.VBN Infected: Trojan-Clicker.Win32.Small.jf skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\03900000.VBN Infected: Trojan.WinREG.Zapchast skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\03E40000.VBN Infected: Trojan.WinREG.Zapchast skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\04040000.VBN Infected: Trojan-Proxy.Win32.Agent.if skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\04540000.VBN Infected: Trojan-Downloader.Win32.Adload.j skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\04540001.VBN Infected: Trojan-Downloader.Win32.Adload.j skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\04A40000.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\04D00000.VBN Infected: Trojan.Win32.StartPage.ahg skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\05180000.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\05580000.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\05AC0000.VBN Infected: Trojan-Clicker.Win32.VB.kc skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\06700000.VBN Infected: Trojan.Win32.StartPage.ahg skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\069C0000.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\069C0001.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\06A00000.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\06A00001.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\06A00002.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\06CC0001.VBN Infected: Trojan.Win32.StartPage.ahg skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\06E80000.VBN Infected: Backdoor.Win32.PackBot.d skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\07040000.VBN Infected: Backdoor.Win32.Rbot.axi skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\07040001.VBN Infected: Trojan-Downloader.Win32.Adload.j skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\07580000.VBN Infected: Trojan.Win32.StartPage.ahg skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\07780000.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\07780001.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\07900000.VBN Infected: Trojan-Clicker.Win32.VB.kc skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\08580000.VBN Infected: Trojan-Proxy.Win32.Agent.if skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\085C0000.VBN Infected: Trojan-Clicker.Win32.Small.jf skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\08740000.VBN Infected: Trojan-Proxy.Win32.Agent.if skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\08A40000.VBN Infected: Trojan-Clicker.Win32.Small.jf skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\08C80001.VBN Infected: Backdoor.Win32.PackBot.d skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\08C80002.VBN Infected: Backdoor.Win32.Rbot.axi skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\08C80003.VBN Infected: Trojan-Downloader.Win32.Adload.j skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\08C80004.VBN Infected: Trojan.Win32.StartPage.ahg skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\08C80005.VBN Infected: Trojan-Clicker.Win32.VB.kc skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\08C80006.VBN Infected: Trojan.Win32.StartPage.aw skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\08D00000.VBN Infected: Trojan.Win32.StartPage.aw skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\08D00001.VBN Infected: Trojan.Win32.StartPage.ahg skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\08D00002.VBN Infected: Trojan.Win32.StartPage.ahg skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\08D00003.VBN Infected: Trojan-Clicker.Win32.VB.kc skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\08D00004.VBN Infected: Trojan.Win32.StartPage.aha skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\08D00005.VBN Infected: Trojan-Downloader.Win32.Adload.l skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\08D00006.VBN Infected: Trojan-Clicker.Win32.VB.kc skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\08D40001.VBN Infected: Trojan.Win32.StartPage.ahg skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\08D80000.VBN Infected: Trojan.Win32.StartPage.ahg skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\08D80001.VBN Infected: Trojan.Win32.StartPage.aw skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\08D80002.VBN Infected: Trojan.Win32.StartPage.ahg skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\08F80000.VBN Infected: Trojan-Clicker.Win32.Small.jf skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\09A40000.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\09F40000.VBN Infected: Backdoor.Win32.PoeBot.c skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\0A1C0000.VBN Infected: Backdoor.Win32.Rbot.akw skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\0A2C0000.VBN Infected: Backdoor.Win32.Rbot.akw skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\0A2C0001.VBN Infected: Backdoor.Win32.Rbot.akw skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\0A300000.VBN Infected: Backdoor.Win32.Rbot.akw skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\0A9C0000.VBN Infected: Backdoor.Win32.Rbot.gen skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\0AE00000.VBN Infected: Trojan-Proxy.Win32.Agent.if skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\0AE40000.VBN Infected: Trojan-Proxy.Win32.Agent.if skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\0CD40000.VBN Infected: Backdoor.Win32.PoeBot.c skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\0F140000.VBN Infected: Trojan-Clicker.Win32.VB.kc skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\0F300000.VBN Infected: Trojan-Proxy.Win32.Agent.if skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\10400000.VBN Infected: Trojan-Proxy.Win32.Agent.if skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\10600000.VBN Infected: Trojan-Proxy.Win32.Agent.if skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\11B40002.VBN Infected: Backdoor.Win32.Rbot.gen skipped

C:\Documents and Settings\Andion Flores\Configuración local\Archivos temporales de Internet\Content.IE5\index.dat Object is locked skipped

C:\Documents and Settings\Andion Flores\Configuración local\Datos de programa\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\Andion Flores\Configuración local\Datos de programa\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\Andion Flores\Configuración local\Historial\History.IE5\index.dat Object is locked skipped

C:\Documents and Settings\Andion Flores\Configuración local\Historial\History.IE5\MSHist0120061204200612 05\index.dat Object is locked skipped

C:\Documents and Settings\Andion Flores\Cookies\index.dat Object is locked skipped

C:\Documents and Settings\Andion Flores\Datos de programa\Webroot\Spy Sweeper\Logs\061203113151.ses Object is locked skipped

C:\Documents and Settings\Andion Flores\NTUSER.DAT Object is locked skipped

C:\Documents and Settings\Andion Flores\NTUSER.DAT.LOG Object is locked skipped

C:\Documents and Settings\LocalService\Configuración local\Archivos temporales de Internet\Content.IE5\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\Configuración local\Datos de programa\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\LocalService\Configuración local\Datos de programa\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\LocalService\Configuración local\Historial\History.IE5\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS014B0F14-C0AE-4659-987F-91763C593E1C.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS01FE1618-8B67-41F1-B723-7D0A5C26CC7B.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS02A8B81B-BE05-4FE6-A9F4-6160D9397A41.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS049FA125-E7A1-4EB6-8EEF-2C36577B9D05.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS07DF8363-231D-4D5C-9FDB-B2D2B7165805.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS0851196E-8809-44CE-B035-2B1057657A3B.tmp Object is locked skipped



C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS0EABC458-A6F0-4526-9697-F4F41D55B4C0.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS0F56ADF3-150D-4C31-81AB-560C9E2B1C48.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS10B51367-1DEF-43BB-ADF9-7641B2593AED.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS151B62D2-C57F-4CDD-9DBE-CB015363D5D8.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS1B3404BA-3877-47D3-A905-0DF6063BF6F6.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS1EDC3AC5-CB98-4416-A97B-7670456444D2.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS229A5184-C179-4784-91F5-605473B0C873.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS287419C2-022D-454C-8F2F-6309A72972B5.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS2B51AB79-0B25-41B2-8ABC-70E0CFF85616.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS3173EB0E-2688-4E5D-95FE-9F591873FBC7.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS34FBC8E7-E413-4FBD-8DB6-8E7BA85E5B60.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS35C363CD-845D-44B7-A75B-9275EBD20AB9.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS368CA5E7-3617-4AEF-8FE4-0A43DC74D5C8.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS373E6BE0-05D1-4854-A05E-FDBBFD041F42.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS379BD196-E3A0-409D-A8CC-5ED8CCD5FE98.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS3865FE06-A76B-44E0-8500-91B2CCCB893B.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS3B236F52-DB5D-4AAB-B2BD-8C2E2948B48C.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS40F518BF-8A87-44C0-99FD-47FD747102D4.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS410E8FE7-A5C3-4CDB-B5EF-CC5A1482E075.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS42FC79F7-B765-4675-BF14-DBDDAFBEBA95.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS4335BD25-8941-4074-82E0-B2FB1524AC85.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS442162A1-32BD-4010-96F8-68EE9DFA9D28.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS45B927A2-B396-409B-B967-32457735902B.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS4774892E-7720-47C1-8D36-D5FA0B3A1D4B.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS4CC54E81-1AAB-4C18-B6DF-B4039EB9A0E2.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS53C4AC0F-7D34-4996-8924-8D47BEC5C412.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS5475789D-B337-4A41-BEAC-8993D34FBD8A.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS56D6AFBD-2797-42C0-8465-203B02DCC9F6.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS57BDA21F-EFF7-4151-9E60-6717602DF28B.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS5B483FD3-B3D2-49B5-8CB5-6ADA056962DD.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS5E69A22C-A52E-4F05-ADBA-C0D24C7EDEB6.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS5F50059A-7AF0-4FC1-A791-301AC7B32962.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS6020A788-1705-4D5F-9466-C17A99F7788C.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS6187D3E9-10FD-414E-8BF8-619605CBEF05.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS647B2D93-A87C-4741-B51F-3FD42B8AE232.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS67CC9DD0-3636-41F3-9411-8CD94D7CA9ED.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS6889D6FD-ECCE-418D-8964-2A6157CDDD2E.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS6D7F6D17-4C14-48E6-A40A-D7CEBD5D761B.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS6DFDA022-C689-49C6-8287-43B75C91874C.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS6E5825E7-B2ED-4366-8E6B-997B9AE6F7A3.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS6FBF5115-B978-47E7-95CC-FFDA95EBD801.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS740BC172-4B46-4A79-8F9E-BC7F8239D581.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS74A44C07-98E8-43CA-A8F5-987FBB82D291.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS74EA052B-2BC9-40D4-8F68-1EBB01CBCC7F.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS7BB69CE4-A225-4C04-8183-0AC01240808F.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS86731E1A-C88A-49F9-8D87-84E6AF6DD5A3.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS88468AFC-9AD4-4800-A926-3DD08F5F7E85.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS8A6D9F37-6DCE-455E-9CF7-68E9F02753C2.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS8E03A542-64D8-488B-8CFE-F5505EFF83C7.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS90DC4775-6B9E-47E6-B8B1-FA40610829BC.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS919DFAF0-B756-4E19-BEE0-F40F9225E85F.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS9221CCC4-CB57-4694-B0EA-00E60B3C9A3C.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS953B9ABB-316E-43FB-984A-1BE7E4956276.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS992D50DF-D877-4611-A033-D06467003D1C.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS9CE57A1A-7C19-4132-86FC-B3218FF72E7E.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSA309A71F-B485-4BBE-A61D-9EC0E0361308.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSA5B3B778-4715-4EA0-B9DD-36C99A71EEB9.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSA645AC6B-41E4-4F9A-8C1A-D66E07EFD6BD.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSA6A27A45-A23C-4E46-87A8-9A33687454AE.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSA6E3079E-1883-449E-9466-DCFAAD362385.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSADF73B84-7FEC-458F-9D90-6AD363EA330D.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSAF05E32F-C0F7-42FE-9370-BA6F97395BFC.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSB1795B3E-D7FB-490C-84E5-9436D60CABCD.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSB183EC31-C99A-43BE-9BB9-10F442233B9B.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSB654FE29-2B59-42F9-96BF-78D775860E3F.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSB6AAAAB5-65C5-410B-8B66-2B448BFFCF3E.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSB784C76E-B1E8-494E-80A7-8EE4D0DF4D25.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSC1B29DB3-1408-4D3C-8D18-BA7DC4D57C5F.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSC3B737EE-14B7-40F9-BCB4-39E6765A33EA.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSC734D0B8-EC19-4B3A-BF39-BBB317D9A645.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSCCA2052B-99EA-45FE-BCD6-BB70F1647BBC.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSCD2385EA-1A62-4C27-AB0C-F6529F9F78BC.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSCE46C74A-CDF1-4394-9997-B17509219CF0.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSD1B1EE7D-6A8F-4332-AE6D-F17ACD6ABEBF.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSD22B7BDF-34EF-4E13-A42E-BB3B269051CC.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSD57C9117-B601-489C-8570-EDBA411602ED.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSD91BF4CA-5B8E-4A67-BB2C-A7717A19D864.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSD9D6BC7C-B311-430F-9C2C-D88DE820F87F.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSD9DC1537-ADF0-4116-89FB-E82920D35CBB.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSD9FFF604-D631-429D-B5CA-36C7CB522EBA.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSDA34928F-4FB6-4C5A-9226-EDEDDCBA978C.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSDC0DE386-94AF-4383-A8CE-C47BE43FBBF0.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSE148559F-C821-4001-8A32-BB7038C83B7A.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSE1EC4489-C1E2-4F07-9F70-3BCBEFC2F553.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSE3B906FB-503B-4991-B7C2-7E4E632E54E3.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSE4DF2E8F-A350-4BCA-AAC1-D4B6DC68EE65.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSE8E00F0A-9092-43D0-8083-AAFCC8C2A878.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSEB550822-2D82-48F6-AAE3-64B775329701.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSF05703AF-90DD-4113-8FBA-46C75DFD55F9.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSF15E1A31-4F19-4DE7-B3AA-EFC2B3749477.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSF3D73E89-9A9F-4553-BD5A-AD51145F0E2E.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSF714C7E5-0405-44D1-8C42-AE32B9946118.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSF8B488FC-12D4-4798-A0B6-DD8312EB3130.tmp Object is locked skipped

C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped

C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped

C:\Documents and Settings\NetworkService\Configuración local\Datos de programa\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\NetworkService\Configuración local\Datos de programa\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped

C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped

C:\install.exe/data0010 Infected: Trojan-Downloader.Win32.Qoologic.at skipped

C:\install.exe NSIS: infected - 1 skipped

C:\WINDOWS\Debug\oakley.log Object is locked skipped

C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped

C:\WINDOWS\eh.exe Infected: Trojan-Dropper.Win32.Delf.rc skipped

C:\WINDOWS\ezr.exe Infected: Trojan-Proxy.Win32.Cimuz.bw skipped

C:\WINDOWS\SchedLgU.Txt Object is locked skipped

C:\WINDOWS\Sti_Trace.log Object is locked skipped

C:\WINDOWS\system32\config\AppEvent.Evt Object is locked skipped

C:\WINDOWS\system32\config\default Object is locked skipped

C:\WINDOWS\system32\config\default.LOG Object is locked skipped

C:\WINDOWS\system32\config\SAM Object is locked skipped

C:\WINDOWS\system32\config\SAM.LOG Object is locked skipped

C:\WINDOWS\system32\config\SecEvent.Evt Object is locked skipped

C:\WINDOWS\system32\config\SECURITY Object is locked skipped

C:\WINDOWS\system32\config\SECURITY.LOG Object is locked skipped

C:\WINDOWS\system32\config\software Object is locked skipped

C:\WINDOWS\system32\config\software.LOG Object is locked skipped

C:\WINDOWS\system32\config\SysEvent.Evt Object is locked skipped

C:\WINDOWS\system32\config\system Object is locked skipped

C:\WINDOWS\system32\config\system.LOG Object is locked skipped

C:\WINDOWS\system32\h323log.txt Object is locked skipped

C:\WINDOWS\system32\i Infected: Trojan-Downloader.BAT.Ftp.ab skipped

C:\WINDOWS\system32\rsvp32_2.dll Infected: Trojan-Proxy.Win32.Cimuz.bw skipped

C:\WINDOWS\system32\wbem\Repository\FS\INDEX.BTR Object is locked skipped

C:\WINDOWS\system32\wbem\Repository\FS\OBJECTS.DAT A Object is locked skipped

C:\WINDOWS\wiadebug.log Object is locked skipped

C:\WINDOWS\wiaservc.log Object is locked skipped

Scan process completed.

ewido anti-spyware online scanner
http://www.ewido.net
__________________________________________________

Name: Proxy.Agent.if
Path: C:\Archivos de programa\Archivos comunes\Symantec Shared\VirusDefs\20060104.006\0084NAV~.TMP
Risk: High

Name: Proxy.Agent.if
Path: C:\Archivos de programa\Archivos comunes\Symantec Shared\VirusDefs\20060215.006\0084NAV~.TMP
Risk: High

Name: Dropper.Agent.aed
Path: C:\install.exe
Risk: High

Name: Downloader.Nurech.m
Path: C:\WINDOWS\eh.exe
Risk: High

Name: Proxy.Cimuz.bw
Path: C:\WINDOWS\ezr.exe
Risk: High

Name: Trojan.Small
Path: C:\WINDOWS\QW5kaW9uIEZsb3Jlcw\kqc4uq6RKHtPvaL5wT.v bs
Risk: High

Name: Trojan.Small
Path: C:\WINDOWS\system32\config\systemprofile\Configura ción local\Archivos temporales de Internet\Content.IE5\CL2RK9MV\teller2[1].htm
Risk: High

Name: Proxy.Cimuz.bw
Path: C:\WINDOWS\system32\rsvp32_2.dll
Risk: High
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiMeneame
Responder Con Cita
  #8 (permalink)  
Antiguo 06/12/06, 11:09:53
Avatar de Nextspy
Moderador Gral.
 
Registrado: ene 2006
Ubicación: Chile
Mensajes: 2.435
Re: Revisión LOG

Hola

Muy bien, los reportes muestran varios archivo novivos

1.- Desactiva Restaurar Sistema

2.- Activa Ver Archivos Ocultos

3.- Reinicia el pc en Modo a Prueba de Fallos

4.- Ejecuta el norton y eliminas todos los archivo en cuarentena

5.- Cierra todos los programas, luego ejecuta el HijackThis, marca y les das "Fix Checked" a las siguientes entradas:

C:\install.exe
C:\WINDOWS\eh.exe
C:\WINDOWS\ezr.exe
C:\WINDOWS\system32\i
C:\WINDOWS\system32\rsvp32_2.dll


C:\WINDOWS\QW5kaW9uIEZsb3Jlcw <--- Elimina esta carpeta y todo el contenido

C:\WINDOWS\system32\config\systemprofile\Configura ción local\Archivos temporales de Internet\Content.IE5 <--- Elimina todo el contenido de esta carpeta

6.- Utiliza el Ccleaner - Manual para eliminar las cookies y temporales

7.- Utiliza el Regseeker - Manual para limpiar el registro

8.- Reinicia, entra en modo normal y nuevamente analiza el sistema con Kaspersky online - Manual y con Ewido Online - Manual

Nota* Al terminar vuelve a activar restaurar sistema y esconde los archivos ocultos

Nos cuentas los resultados y pegas los reportes

salu2
__________________

Novedades del Foro | Antivirus Online | Eliminar Malwares | Políticas del Foro | Blog


* Ayúdanos haciendo una DONACIÓN para poder seguir Ayudando.
* Para evitar Virus y Spywares al navegar por internet, USE FIREFOX !!
* No se resuelven dudas por Privados ni por E-mail, ya que para eso esta el foro.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiMeneame
Responder Con Cita
  #9 (permalink)  
Antiguo 12/12/06, 13:15:39
Usuario
 
Registrado: nov 2006
Ubicación: Tarragona
Mensajes: 7
Re: Revisión LOG

Hola, aqui te cuelgo los reportes de los dos antivirus:

KASPERSKY ONLINE SCANNER REPORT
Tuesday, December 12, 2006 8:20:15 AM
Operating System: Microsoft Windows XP Professional, (Build 2600)
Kaspersky Online Scanner version: 5.0.83.0
Kaspersky Anti-Virus database last update: 11/12/2006
Kaspersky Anti-Virus database records: 236012

Scan Statistics
Total number of scanned objects 30560
Number of viruses found 2
Number of infected objects 14 / 0
Number of suspicious objects 0
Duration of the scan process 01:58:23

Infected Object Name Virus Name Last Action
C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\APTemp\AP0.exe Infected: Backdoor.Win32.PoeBot.c skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\02440000.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\02440001.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\02880000.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\04A40000.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\05180000.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\05580000.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\069C0000.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\069C0001.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\06A00000.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\06A00001.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\06A00002.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\07780000.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\All Users\Datos de programa\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\07780001.VBN Infected: Virus.Win32.Parite.b skipped

C:\Documents and Settings\Andion Flores\Configuración local\Archivos temporales de Internet\Content.IE5\index.dat Object is locked skipped

C:\Documents and Settings\Andion Flores\Configuración local\Datos de programa\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\Andion Flores\Configuración local\Datos de programa\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\Andion Flores\Configuración local\Historial\History.IE5\index.dat Object is locked skipped

C:\Documents and Settings\Andion Flores\Configuración local\Historial\History.IE5\MSHist0120061211200612 12\index.dat Object is locked skipped

C:\Documents and Settings\Andion Flores\Cookies\index.dat Object is locked skipped

C:\Documents and Settings\Andion Flores\NTUSER.DAT Object is locked skipped

C:\Documents and Settings\Andion Flores\NTUSER.DAT.LOG Object is locked skipped

C:\Documents and Settings\LocalService\Configuración local\Archivos temporales de Internet\Content.IE5\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\Configuración local\Datos de programa\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\LocalService\Configuración local\Datos de programa\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\LocalService\Configuración local\Historial\History.IE5\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\Cookies\index.dat Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS00EF28DD-B2E9-4B0B-8515-2F064186D54C.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS024AB264-DB1A-46E4-B808-40FAA5DC827D.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS02E2CC1F-24EB-4BBA-B7A4-DA901AB7DFE4.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS04FF184B-E680-4EF6-85AD-F106C972A245.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS05148657-C4E9-4A47-928B-B48EDE47C148.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS070187ED-A3A2-4246-BB52-BF4324E40170.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS0BBF4749-59B4-46AC-A2A2-9C0207DD8579.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS0EAF65A2-FF78-4884-B717-0342A278939C.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS11036181-50DF-4383-B89D-0A4730E0E549.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS116D15C4-4FEC-45CE-8F92-5FC1DD734878.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS14F2C7E2-CAC3-4886-A786-6C977A91F0FF.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS1992C405-3882-4179-93D2-B6FB93D485FD.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS1E21B7FD-3A9D-499C-AE96-7B25A4F6D4C6.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS2190B12B-AA09-40A6-BFCF-3D87650DDADE.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS21A4579F-B0B9-4712-B06A-28B088988EAE.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS2242324A-5CA0-447B-B921-EB34C532D804.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS2B88F690-2745-483E-BF66-923171437D7C.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS3075FD19-E5CC-4BA1-97C2-07FA4451CA09.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS346D85E5-C1CE-41E2-A172-2EBC2EF29914.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS37236B59-084B-4803-8F56-B64576A0650B.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS3B0540FE-E1D8-4C45-BE92-3F2A3B99B461.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS3C9F7F90-C280-4E73-8D21-27EAB214E0A2.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS3E85F039-5A76-4A46-B69C-198946FF6B3D.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS40503089-8DB6-4CB1-88C0-D2578CBDB6FA.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS43921798-AD67-42E8-93B5-4B4EDF6B6A1A.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS48702644-BF99-4287-BC55-07EFD35CC763.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS4A1D8F80-C13F-4E4E-A187-A561524E4B3D.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS4B3C27E1-1B22-4597-87B9-BAC7F99CC361.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS4C858AAF-A324-4711-9E34-174E6FBB2CF5.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS4F423F66-BD3F-4FA9-A046-4ABC896E1F62.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS5155E06D-04E9-4F9C-B5C1-C9C45927C843.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS52ED1449-5C4B-4AA9-B98C-EA7B0FF6AA61.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS5B3DE164-4F86-44CD-A956-F9F80EA8F18E.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS5CCEAC66-6892-4421-A00A-725555BD2708.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS5EAC266E-3BA4-41FB-994B-7F9C336B2F46.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS5EC0D0F5-D12E-4332-8D7D-9A687B9DD75E.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS615C3B28-8333-4061-9D22-6FAB7151D3F3.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS616E2EC2-283C-441B-9455-5A73D5C419A1.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS6730E478-6724-41C5-B3FE-75F92F2317A8.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS67C69352-1A86-4B48-B92E-56C5B2634215.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS6927821A-E614-45FE-8560-91A9F7769CF4.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS6C8C5263-8B55-493F-84F6-9FE070BDC1A4.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS702E268C-64BB-45F8-B17F-73978F35042A.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS75174451-2D56-46FA-BEC2-B26493853F8B.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS76688254-F275-4956-AE20-C4DB7AFD1924.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS78B67AD9-F5D2-49E6-A41A-FC2F7E936A14.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS7A4093DA-D93E-4969-BFB4-52FD72E252F1.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS7BF0B1CF-0D10-4D6D-BCD8-D9953B113490.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS7E041794-4E61-450B-85B8-B4B8573A06E8.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS808D8534-BDA3-4BF5-B972-8CCE64C8F660.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS82556AFD-688B-41CA-8C9B-A064421E9EFF.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS8329A426-3030-41F0-B4EB-C2193C9F4C52.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS8517EB9C-2D26-4D71-834B-490D0ABD94BC.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS89379A1D-5205-435F-A601-72918A6B2245.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS8B468A09-584C-4F88-BD05-730C3EBCFDBF.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS8DDB4ED8-3715-4174-9815-A6FAB1CEDF43.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS8F7D654B-C3C4-4A0A-A207-EB74D71BCD14.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS90BF9BE8-95F4-4172-9313-7635F1CFA391.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS93436949-7072-497A-8351-462125BE39EC.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS95F676EF-F40F-4FF1-A931-75AE0CFEB6FE.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS963E8843-62AC-443D-AD09-D669FA05E1E0.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS99AAD6F7-0A60-4AAE-A945-EF22A519F6CE.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCS9BC09EE8-510C-4EF3-B872-E287E524D8A1.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSA12FE395-DBE2-4EF9-A6B3-366C95CC8882.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSA7B2E6DF-5064-4B67-AD8E-1607D33AC3E5.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSA7EF3C50-8472-4A67-B93B-575D828779E1.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSA8A2E3C5-43A2-4DA7-96C3-2ADEC9B9042A.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSA8C948E6-3E86-46F5-869A-5726D7F34BBB.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSAD13A002-101E-4FBA-98CE-958625AD6698.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSAFC384E8-E7F0-4827-BA14-16A392F113FD.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSB0C1353A-1A21-4C4C-8760-27A954720A3D.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSB1A1B559-5EC3-4855-BD63-130AFC7EB5EB.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSB2A1A600-8C9C-4FC3-8FCF-3CF8D43F5200.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSB8071DB9-07BA-4B9A-A93E-EDEAB9163428.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSBCB125A6-3135-4C6B-814D-760516301419.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSBE567600-FD45-4A45-88D6-AB3DEAC1954C.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSBFA0067C-CC41-4961-A58B-FC7EFB99ABD7.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSC26BF5F0-EC76-4FF0-A74C-E1810B93CA00.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSC401DAA3-9E78-4CEA-AB38-9FBAF9605552.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSC48B075E-AF22-423F-A6B3-F06A9D651B81.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSC56DED7F-C925-4850-81F2-5A7CC5081226.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSC606D8C1-3AB8-4F77-A861-24C1A8423D6E.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSC7844E6F-6DD0-4A04-9CCB-C458590DCF22.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSCEC57280-F6AE-40E4-81B9-8CC647C84AF4.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSCF79EE0E-AF2B-4EBB-A1E5-2DF94329DCEE.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSD0D18E52-AD2F-4BD6-943C-73142C832E27.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSD1D2E55F-A7AD-4D58-AC6C-384D5B78363D.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSD562A130-A723-4F2E-9A2B-FCB98987A563.tmp Object is locked skipped

C:\Documents and Settings\LocalService\Datos de programa\Webroot\Spy Sweeper\Temp\SSCSD5D47133-D50A-4409-80F8-24507E9B5D62.tmp Object is locked skipped

C:\Docu